StackRadar

CVE-2026-34743

Medium

Advisory

Published 1 Apr 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.004
38th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,977
of 17,781 indexed, latest versions
Container images
2,118
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: xz security update

Carried by container images the latest versions of 1,977 of 17,781 indexed charts deploy, on 2,118 images.

Affected packageAffected versionsFixed inImages
xz-utilsdeb5.1.1alpha+20120614-2ubuntu2, 5.2.2-1.3, 5.2.2-1.3ubuntu0.1, 5.2.4-1+10 more5.1.1alpha+20120614-2ubuntu2.14.04.1+esm2, 5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2, 5.2.2-1.3ubuntu0.1+esm1, 5.2.4-1ubuntu1.1+esm1+6 more1,811
xzapk5.4.3-r1, 5.6.1-r3, 5.6.2-r0, 5.6.2-r1+4 more5.8.3-r0295
xzrpm1:5.6.2-4.el10_0, 5.2.3-lp151.4.3.11:5.6.2-4.el10_2.1, 5.8.3-1.112
OSV records
ALPINE-CVE-2026-34743DEBIAN-CVE-2026-34743RHSA-2026:64787RLSA-2026:64787UBUNTU-CVE-2026-34743ECHO-54f0-42da-6974openSUSE-SU-2026:10492-1
Also known as
USN-8362-1

Charts affected

1,977 by stars
ChartLatestAffected imagesRadar Score
dashdotoben01Verified publisher1.5.01 of 1See more

dashdot oben01 1.5.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
mauricenino/dashdot:5.9.2236997816917
xz@5.6.3-r0
5.8.3-r0

Open the chart page →

1,238
nginx-s3olopostVerified publisher0.2.11 of 1See more

nginx-s3 olopost 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/nginxinc/nginx-s3-gateway/nginx-oss-s3-gateway:unprivileged-oss3db8145349a3
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

5,039
opencatalogiopencatalogi1.0.62 of 8See more

opencatalogi opencatalogi 1.0.6

2 of the 8 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
ghcr.io/opencatalogi/web-app:deva1a7f507f6ae
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

14,838
dhcp-serveropencord1.0.21 of 1See more

dhcp-server opencord 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
networkboot/dhcpd:lateste99bbfbd6fb2
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

4,166
librechatopenshift1.9.02 of 3See more

librechat openshift 1.9.0

2 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/mongo:8.0.20098862b1339f
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

5,779
opentelemetry-demoopentelemetry-helmVerified publisher0.41.12 of 34See more

opentelemetry-demo opentelemetry-helm 0.41.1

2 of the 34 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/open-telemetry/demo:3.0.0-image-provider93e1585e97ac
xz@5.8.1-r0
5.8.3-r0
ghcr.io/open-telemetry/demo:3.0.0-ade6c593fe75eb
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3

Open the chart page →

22,420
openvaultopenvaultVerified publisher0.8.11 of 2See more

openvault openvault 0.8.1

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/wgbh-mla/ov-wag:v1.1.06df27f944fe8
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

6,873
opikopikOfficialVerified publisher2.2.592 of 13See more

opik opik 2.2.59

2 of the 13 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/zookeeper:3.9.4dfa9ba46d14b
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
redis/redis-stack-server:7.2.0-v10e44b2b49d059
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

14,334
opsopsVerified publisher1.2.01 of 2See more

ops ops 1.2.0

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
shaowenchen/ops-server:latest315444f703f4
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

8,939
orbitalregorbitalregVerified publisher0.3.01 of 4See more

orbitalreg orbitalreg 0.3.0

1 of the 4 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
orbitalreg/orbitalreg-frontend:0.1.04fd449582a3c
xz@5.6.3-r1
5.8.3-r0

Open the chart page →

2,278
palworldpalworld-server-chartVerified publisher2.7.11 of 1See more

palworld palworld-server-chart 2.7.1

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
thijsvanloef/palworld-server-docker:v2.7.1401d3eb5c053
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

3,681
radarrpanzer1119Verified publisher0.2.21 of 1See more

radarr panzer1119 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/radarr:6.0.4.10291-ls2896c0948b42c14
xz@5.8.1-r0
5.8.3-r0

Open the chart page →

949
sonarrpanzer1119Verified publisher0.2.21 of 1See more

sonarr panzer1119 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/sonarr:4.0.16.2944-ls3008b9f2138ec50
xz@5.8.1-r0
5.8.3-r0

Open the chart page →

947
paperless-ngxpaperlessVerified publisher0.4.01 of 3See more

paperless-ngx paperless 0.4.0

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
bitnamilegacy/postgresqldigest-pinned926356130b77
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

8,489
uptime-kumapascaliskeVerified publisher3.0.01 of 1See more

uptime-kuma pascaliske 3.0.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.0.2-slim-rootless9865163f92c1
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

6,883
pbuf-registrypbuf-registry0.4.11 of 2See more

pbuf-registry pbuf-registry 0.4.1

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/postgres:18.1-alpine3.2144d837eb4c2e
xz@5.6.3-r1
5.8.3-r0

Open the chart page →

1,940
fahclientpcktdmp2.6.01 of 2See more

fahclient pcktdmp 2.6.0

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
foldingathome/fah-gpu:latest5ef7742d1eb4
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

4,727
peertubepeertubeVerified publisher0.1.31 of 1See more

peertube peertube 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
chocobozzz/peertube:v8.1.5052712130691
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

7,035
phpipamphpipam-helmVerified publisher1.0.122 of 3See more

phpipam phpipam-helm 1.0.12

2 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
phpipam/phpipam-cron:v1.7.354468713454e
xz@5.6.2-r0
5.8.3-r0
phpipam/phpipam-www:v1.7.3ace0efd24830
xz@5.6.2-r0
5.8.3-r0

Open the chart page →

3,778
spring-boot-api-apppiominVerified publisher0.3.111 of 1See more

spring-boot-api-app piomin 0.3.11

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
piomin/sample-spring-kotlin-microservice:1.1871f784dd6bc
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

7,576
portraitportraitVerified publisher0.2.132 of 8See more

portrait portrait 0.2.13

2 of the 8 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/elasticsearch:7.17.0332c6d416808
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
treskon/portrait-web-setup:DEV-latesta475d80e4ecf
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

31,844
privacyideaprivacyidea1.0.61 of 2See more

privacyidea privacyidea 1.0.6

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/mariadb:11.7.2fcc7fcd7114a
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3

Open the chart page →

5,440
prowlerprowler-appVerified publisher0.0.92 of 5See more

prowler prowler-app 0.0.9

2 of the 5 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/neo4j:2026.02.25ab4ab0358cf
xz-utils@5.8.1-1
5.8.1-1+deb13u1
prowlercloud/prowler-api:5.31.14f252d579be2
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

8,158
pzserverpzserver0.1.171 of 2See more

pzserver pzserver 0.1.17

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
lis314/project-zomboid-docker:latestaa2089c37920
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

3,201
minecraft-serverqumine0.1.15001 of 1See more

minecraft-server qumine 0.1.1500

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
qumine/minecraft-server:v0.1.15c0b650d51132
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

6,796
rabbitmqrabbitmq-magefleet1.2.01 of 1See more

rabbitmq rabbitmq-magefleet 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/rabbitmq:4.1.0-management935b3f84c1e4
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3

Open the chart page →

2,762
napcatredish101Verified publisher0.1.31 of 1See more

napcat redish101 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
mlikiowa/napcat-docker:latest1336a777f9a4
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

7,405
redis-sentinel-gatewayredis-sentinel-gatewayVerified publisher1.0.21 of 1See more

redis-sentinel-gateway redis-sentinel-gateway 1.0.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
promzeus/redis-sentinel-gateway:v182f6d56e280b
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

2,652
reportportalreportportal-ioOfficialVerified publisher26.8.122 of 15See more

reportportal reportportal-io 26.8.12

2 of the 15 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
bitnamilegacy/minio:2025.7.23-debian-12-r08935e75fa5d1
xz-utils@5.4.1-1
5.4.1-1+deb12u1
reportportal/service-auto-analyzer:5.15.5c449b93629a5
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

11,869
reservation-appreservation-app1.0.91 of 4See more

reservation-app reservation-app 1.0.9

1 of the 4 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
zbalogh/reservation-angular-ui:1.0.95eb19e460b3c
xz@5.8.1-r0
5.8.3-r0

Open the chart page →

6,639
resurfaceresurfaceioVerified publisher3.9.01 of 3See more

resurface resurfaceio 3.9.0

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
resurfaceio/resurface:3.7.84d5cda2f64109
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

7,432
atuinrm3lVerified publisher0.11.02 of 3See more

atuin rm3l 0.11.0

2 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.2.0-debian-12-r890fda44bfa42
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
ghcr.io/atuinsh/atuin:18.12.0e953fa9e36ef
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

6,521
dev-feedrm3lVerified publisher3.1.21 of 3See more

dev-feed rm3l 3.1.2

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.4.3-debian-12-r08b3778160e34
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

9,837
service-names-port-numbersrm3lVerified publisher0.26.11 of 1See more

service-names-port-numbers rm3l 0.26.1

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
rm3l/service-names-port-numbers:0.12.162d1cc4223e5
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

10,120
rocketadminrocketadminOfficialVerified publisher1.0.421 of 1See more

rocketadmin rocketadmin 1.0.42

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
rocketadmin/rocketadmin:1.17.710955ef540b9
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

5,482
elasticsearchromanow-helm-chartsVerified publisher1.7.11 of 2See more

elasticsearch romanow-helm-charts 1.7.1

1 of the 2 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/elasticsearch:7.17.8fdc73b3249c1
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

6,045
fluent-bitromanow-helm-chartsVerified publisher1.7.31 of 1See more

fluent-bit romanow-helm-charts 1.7.3

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
fluent/fluent-bit:4.0-debuge76397ef3983
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

7,740
kibanaromanow-helm-chartsVerified publisher1.7.11 of 1See more

kibana romanow-helm-charts 1.7.1

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/kibana:7.17.8c5781ba340ef
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

6,879
kube-state-metricsromanow-helm-chartsVerified publisher1.7.21 of 1See more

kube-state-metrics romanow-helm-charts 1.7.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
bitnamilegacy/kube-state-metrics:204a3044b384b
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

2,654
logstashromanow-helm-chartsVerified publisher1.5.01 of 1See more

logstash romanow-helm-charts 1.5.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
library/logstash:7.17.817a4f64e9cf5
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

7,529
routehub-client-hubroutehub-helm1.0.01 of 3See more

routehub-client-hub routehub-helm 1.0.0

1 of the 3 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
eqalpha/keydb:latest6537505c4235
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1

Open the chart page →

12,930
mealiertomik-helm-chartsVerified publisher0.0.21 of 1See more

mealie rtomik-helm-charts 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v3.2.1322369a5b748
xz-utils@5.8.1-1
5.8.1-1+deb13u1

Open the chart page →

3,929
baikalrubxkubeVerified publisher1.3.11 of 1See more

baikal rubxkube 1.3.1

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ckulka/baikal:0.10.1-nginx434bdd162247
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

5,315
delugerubxkubeVerified publisher1.2.11 of 1See more

deluge rubxkube 1.2.1

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
linuxserver/deluge:18.04.10ac871624394
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1

Open the chart page →

13,541
kyoorubxkubeVerified publisher0.1.104 of 9See more

kyoo rubxkube 0.1.10

4 of the 9 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/zoriya/kyoo_autosync:4.7.1fbba58ddb1a6
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
ghcr.io/zoriya/kyoo_back:4.7.1416e980f76a6
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
ghcr.io/zoriya/kyoo_migrations:4.7.1f7e607f24071
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
ghcr.io/zoriya/kyoo_scanner:4.7.17dc0ee57b628
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1

Open the chart page →

30,234
conference-appsalaboy1.0.03 of 7See more

conference-app salaboy 1.0.0

3 of the 7 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
salaboy/agenda-service-0967b907d9920c99918e2b91b91937b3digest-pinnedce9ce8293e4e
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
salaboy/c4p-service-a3dc0474cbfa348afcdf47a8eee70ba9digest-pinnedbb64bf14467d
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
salaboy/notifications-service-0e27884e01429ab7e350cb5dff61b525digest-pinned799c35f9f306
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1

Open the chart page →

10,905
devpisb-helm-charts0.3.01 of 1See more

devpi sb-helm-charts 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
jonasal/devpi-server:6.17.0-alpineec1eee99a18d
xz@5.8.1-r0
5.8.3-r0

Open the chart page →

920
uptime-kumasb-helm-charts0.4.01 of 1See more

uptime-kuma sb-helm-charts 0.4.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.0.24c364ef96aad
xz-utils@5.4.1-1
5.4.1-1+deb12u1

Open the chart page →

38,107
schemaheroschemahero1.4.01 of 1See more

schemahero schemahero 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
schemahero/schemahero-manager:0.22.11609e1a05cd3
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3

Open the chart page →

2,139
karakeepself-hosters-by-nightVerified publisher2.5.11 of 1See more

karakeep self-hosters-by-night 2.5.1

1 of the 1 container images this version deploys carry CVE-2026-34743.

Container imageDigestPackageFixed in
ghcr.io/karakeep-app/karakeep:0.27.1abd7d6b11b1b
xz@5.8.1-r0
5.8.3-r0

Open the chart page →

5,213

Container images carrying it

2,118 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
dellcloud/pages:monitor6ba7b22caacd
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
79
flyway/flyway:6.4.422d97ceb0c47
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1
79
codeurjc/toposervice:v1.0:v1.239fb4c11e6a49
xz-utils@5.2.2-1.3ubuntu0.1
5.2.2-1.3ubuntu0.1+esm1
13
quay.io/kiwigrid/k8s-sidecar:2.5.0a6b3f707f883
xz@5.8.1-r0
5.8.3-r0
13
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
xz-utils@5.4.1-1
5.4.1-1+deb12u1
11
oomk8s/readiness-check:2.0.2875814cc853d
xz-utils@5.1.1alpha+20120614-2ubuntu2
5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2
11
library/mongo:5.0.6-focal8e70544b6c76
xz-utils@5.2.4-1ubuntu1
5.2.4-1ubuntu1.1+esm1
10
library/rabbitmq:3.9-management8a279e9396a8
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
10
library/rabbitmq:3.13-management:3-managemente582c0bc7766
xz-utils@5.6.1+really5.4.5-1ubuntu0.2
5.6.1+really5.4.5-1ubuntu0.3
8
jellyfin/jellyfin:10.11:10.11.11:latestaefb67e6a7ff
xz-utils@5.8.1-1
5.8.1-1+deb13u1
7
library/kong:3.6a42d2b4503e7
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
7
bitnamilegacy/rabbitmq:4.1.3:4.1.3-debian-12-r19e635efba431
xz-utils@5.4.1-1
5.4.1-1+deb12u1
6
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
xz-utils@5.4.1-1
5.4.1-1+deb12u1
6
oomk8s/readiness-check:2.0.07daa08b81954
xz-utils@5.1.1alpha+20120614-2ubuntu2
5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2
6
pnnlmiscscripts/anaconda9:1714885940.021839-nginx-1cfbc9b70cbf8
xz@5.6.2-r0
5.8.3-r0
6
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
6
quay.io/devtron/postgres:14.91b594392f7cb
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
6
bitnamilegacy/kubectl:1.29.2c74b703deed2
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
5
bitnamilegacy/postgresql:17.5.0:latest42a8200d3597
xz-utils@5.4.1-1
5.4.1-1+deb12u1
5
flaresolverr/flaresolverr:latest:v3.5.0139dfee1c6f8
xz-utils@5.4.1-1
5.4.1-1+deb12u1
5
library/mongo:4.44be76f674fc4
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1
5
library/postgres:122f2a8c2a7d10
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
5
solsson/kafka:latest41e5d8f6f290
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1
5
registry.k8s.io/ingress-nginx/controller:v1.15.1594ceea76b01
xz@5.8.2-r0
5.8.3-r0
5
artifacthub/postgres:latest4fd34fa635cc
xz-utils@5.8.1-1
5.8.1-1+deb13u1
4
bitnamilegacy/mariadb:12.0.2-debian-12-r0888cdaae3cb9
xz-utils@5.4.1-1
5.4.1-1+deb12u1
4
bitnamilegacy/mysql:9.4.0-debian-12-r1ec13e229247a
xz-utils@5.4.1-1
5.4.1-1+deb12u1
4
bitnamilegacy/postgresql:16233f361c5819
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
4
bitnamilegacy/postgresql:17.6.0-debian-12-r0de520acd66fc
xz-utils@5.4.1-1
5.4.1-1+deb12u1
4
bitnamilegacy/rabbitmq:4.1.2:4.1.2-debian-12-r1fac502149c40
xz-utils@5.4.1-1
5.4.1-1+deb12u1
4
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
xz-utils@5.1.1alpha+20120614-2ubuntu2
5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2
4
hyperledger/fabric-couchdb:0.4.15f6c724592abf
xz-utils@5.1.1alpha+20120614-2ubuntu2
5.1.1alpha+20120614-2ubuntu2.16.04.1+esm2
4
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
4
library/mongo:5.0-focal5e15a3f014ed
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1
4
library/mongo:4.2.12-bionic628741415fc9
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1
4
library/mongo:4.4.66efa05203990
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1
4
library/nginx:1.27.1287ff321f9e3
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
4
library/postgres:134689940c6838
xz-utils@5.8.1-1
5.8.1-1+deb13u1
4
library/rabbitmq:3.13-management-alpine:3-management-alpine606d8c0d6b3c
xz@5.8.1-r0
5.8.3-r0
4
library/rabbitmq:3.11-managementc3f70098e01d
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
4
mastercloudapps/planner:v1.2340a950b311b2
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
4
opea/llm-tgi:1.00c25aab3f106
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
4
oscarsotosanchez/weatherservice:v1.0911ec961d10b
xz-utils@5.2.2-1.3
5.2.2-1.3ubuntu0.1+esm1
4
shashkist/flask-contacts-app:latest581de1fd6084
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
4
valkey/valkey:9.0.2930b41430fb7
xz-utils@5.8.1-1
5.8.1-1+deb13u1
4
ghcr.io/foundry-rs/foundry:latest0c00cb0bda1a
xz-utils@5.2.5-2ubuntu1
5.2.5-2ubuntu1.1
4
bitnamilegacy/kubectl:latestcd354d5b2556
xz-utils@5.4.1-1
5.4.1-1+deb12u1
3
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
xz-utils@5.4.1-1
5.4.1-1+deb12u1
3
bitnamilegacy/postgresql:14.13.0df6ec02e2b9a
xz-utils@5.4.1-0.2
5.4.1-1+deb12u1
3
ciscolabs/rtsp-client:latesta7b60ec88285
xz-utils@5.2.4-1ubuntu1.1
5.2.4-1ubuntu1.1+esm1
3

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.